查看: 3333|回复: 10
收起左侧

[病毒样本] MD5: 47F3CE Microsoft.vbs腳本KASPERSKY獨家已知,Webwasher啓發!

[复制链接]
mhj144007
发表于 2007-6-16 12:10:49 | 显示全部楼层 |阅读模式
看看有沒有問題

AhnLab-V32007.6.16.006.15.2007 [td]no virus found
AntiVir7.4.0.3206.15.2007 [td]no virus found
Authentium4.93.806.16.2007 [td]no virus found
Avast4.7.997.006.15.2007 [td]no virus found
AVG7.5.0.46706.15.2007 [td]no virus found
BitDefender7.206.16.2007 [td]no virus found
CAT-QuickHeal9.0006.15.2007 [td]no virus found
ClamAVdevel-2007041606.16.2007 [td]no virus found
DrWeb4.3306.15.2007 [td]no virus found
eSafe7.0.15.006.14.2007 [td]no virus found
eTrust-Vet30.7.372106.15.2007 [td]no virus found
Ewido4.006.15.2007 [td]no virus found
FileAdvisor106.16.2007 [td]no virus found
Fortinet2.85.0.006.16.2007 [td]no virus found
F-Prot4.3.2.4806.15.2007 [td]no virus found
F-Secure6.70.13030.006.15.2007Trojan.VBS.Runner.o
IkarusT3.1.1.806.15.2007 [td]no virus found
Kaspersky4.0.2.2406.16.2007Trojan.VBS.Runner.o
McAfee505406.15.2007 [td]no virus found
Microsoft1.260706.16.2007 [td]no virus found
Norman5.80.0206.15.2007 [td]no virus found
Panda9.0.0.406.16.2007 [td]no virus found
Prevx1V206.16.2007 [td]no virus found
Sophos4.18.006.12.2007 [td]no virus found
Sunbelt2.2.907.006.16.2007 [td]no virus found
Symantec1006.16.2007 [td]no virus found
TheHacker6.1.6.13306.15.2007 [td]no virus found
VBA323.12.0.206.15.2007 [td]no virus found
VirusBuster4.3.23:906.15.2007 [td]no virus found
Webwasher-Gateway6.0.106.16.2007VBScript.Vulnerable.gen!High (suspicious)


Aditional Information
File size: 121 bytes
MD5: 47f3ce7b017bb2833d1f60ed736ec45b
SHA1: 006b68cd47d53fa5cca26c8f4ba380ea5e9b9f85

VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.



> Go to: Home Contactar En Español www.virustotal.com :: ©Hispasec Sistemas 2004-07:: e-mail info@virustotal

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
wangjay1980
发表于 2007-6-16 12:11:56 | 显示全部楼层
detected: Trojan program Trojan.VBS.Runner.o        URL: http://bbs.kafan.cn/attachment.php?aid=88051//Microsoft.vbs
mofunzone
发表于 2007-6-16 12:16:10 | 显示全部楼层
汗。。
  1. Set shell = createobject("Wscript.Shell")
  2. Shell.run("C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Microsoft.com")
  3. set Shell=Nothing
复制代码
这个没意义吧,只是改了右键而已,有的厂家乐意报有的未必。。

[ 本帖最后由 mofunzone 于 2007-6-15 20:18 编辑 ]
wangjay1980
发表于 2007-6-16 12:19:31 | 显示全部楼层
不报也不用这样吧
红心王子
发表于 2007-6-16 12:20:48 | 显示全部楼层
KV不报
上报
taihuxian
发表于 2007-6-16 12:27:32 | 显示全部楼层
Virus: Trojan.VBS.Runner.o

Virus found while downloading Web content.

Address: bbs.kafan.cn
scottxzt
发表于 2007-6-16 13:39:16 | 显示全部楼层
啥东西?

本帖子中包含更多资源

您需要 登录 才可以下载或查看,没有帐号?快速注册

x
yangpizhi
发表于 2007-6-16 13:40:05 | 显示全部楼层
Virus: Trojan.VBS.Runner.o
File: 88051
Directory: C:\Documents and Settings\Administrator\Application Data\IDM\DwnlData\Administrator\88051_109
Process: IDMan.exe
AVK。。。。。。。
啊弥陀佛
发表于 2007-6-16 14:59:36 | 显示全部楼层
原帖由 scottxzt 于 2007-6-16 13:39 发表
啥东西?


Set shell = createobject("Wscript.Shell")
Shell.run("C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\Microsoft.com")
set Shell=Nothing

把Microsoft.vbs拷贝到C:\DOCUME~1\ADMINI~1\LOCALS~1\Temp\下再运行看看,
应该就不会提示了
1688388728
发表于 2007-6-16 15:26:54 | 显示全部楼层
病毒: Trojan.VBS.Runner.o
文件: Microsoft[1].rar
目录: C:\Documents and Settings\Administrator\Local Settings\Temporary Internet Files\Content.IE5\VM1NGYS8
进程: iexplore.exe
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-1-28 10:24 , Processed in 0.137914 second(s), 18 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表